Vulnerabilities > CVE-2013-6189 - Unspecified vulnerability in HP Application Information Optimizer

047910
CVSS 10.0 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
low complexity
hp
critical

Summary

Unspecified vulnerability in the Archive Query Server in HP Application Information Optimizer (formerly HP Database Archiving) 6.2, 6.3, 6.4, and 7.0 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1666.

Seebug

bulletinFamilyexploit
descriptionBUGTRAQ ID: 64557 CVE(CAN) ID: CVE-2013-6189 HP Application Information Optimizer 数据库软件可用智能数据管理和存储将结构化数据占用空间降至最低,并实现应用信息价值最大化。 HP Application Information Optimizer 6.2, 6.3, 6.4, 7.0版本在Archive Query Server组件的实现中存在安全漏洞,可使攻击者在受影响应用上下文中执行任意代码。 0 HP Application Information Optimizer 7.0 HP Application Information Optimizer 6.4 HP Application Information Optimizer 6.3 HP Application Information Optimizer 6.2 厂商补丁: HP -- HP已经为此发布了一个安全公告(HPSBGN02949)以及相应补丁: HPSBGN02949:HPSBGN02949 链接:http://h20566.www2.hp.com/portal/site/hpsc/template.PAGE/public/kb/docDisplay/?docId=emr_na-c0404107
idSSV:61249
last seen2017-11-19
modified2014-01-02
published2014-01-02
reporterRoot
titleHP Application Information Optimizer Archive Query Server组件任意代码执行漏洞